Every new exploit,
on the radar.

Public proof-of-concept exploits for fresh CVEs, tracked from GitHub around the clock. Filter, search and stay ahead of attackers.

monitoring live
11114CVEs tracked
26004PoC repositories
17New in 24h
354PoC updated in 7 days
filters
Reset
All New Fresh PoC Hot Multi PoC Critical High

803 results

CVE-2026-42533
FRESH PoCMULTI PoC
PoCs 12 ★ 35 Last push 2026-10-06 (3 days, 23 hours ago)

Fetching description from NVD…

Show 8 of 12 repositories
imbas007/CVE-2026-42533

nginx heap buffer overflow PoC — CVE-2026-42533 pre-auth RCE via two-pass capture clobbering. Crash confirmed on Ubuntu 24.04.

★ 35 · 2026-07-27
0xCyberstan/CVE-2026-42533-Config-Scanner

Static config scanner that flags nginx configs vulnerable to the complex_value two-pass capture-clobbering bug (regex map + regex capture → heap overflow / inf…

★ 30 · 2026-07-20
Daniyal48/ghostlock-vagrant-box

An isolated Vagrant testbed designed to simulate a complete attack chain: Initial access via the Nginx heap buffer overflow (CVE-2026-42533) followed by root p…

★ 1 · 2026-07-20
seguridadentrerios/CVE-2026-42533

Vulnerabilidad en NGINX

★ 1 · 2026-07-22
0xCyberstan/CVE-2026-42533-POC

CVE-2026-42533: pre-auth nginx heap overflow and info leak from PCRE capture clobbering in the map/script engine, chained to RCE.

★ 1 · 2026-08-05
srkyn/nginx-map-risk-audit

Defensive NGINX CVE-2026-42533 map regex risk audit with config scanner, Splunk/Defender notes, and lab evidence.

★ 0 · 2026-07-20
suominen/CVE-2026-42533

Tracking the nginx CVE-2026-42533 map/regex capture-clobbering heap overflow

★ 0 · 2026-10-06
gagaltotal/CVE-2026-42533-nginx

CVE-2026-42533 Nginx

★ 0 · 2026-07-23
CVE-2026-8206
FRESH PoCMULTI PoC
PoCs 5 ★ 3 Last push 2026-10-06 (4 days, 5 hours ago)

Fetching description from NVD…

Show 5 repositories
Jenderal92/CVE-2026-8206

Mass exploitation tool for CVE-2026-8206 – Unauthenticated Privilege Escalation via 'handle_forgot_password' in Kirki WordPress plugin (≤6.0.6).

★ 3 · 2026-06-02
Sanjith1236/CVE-2026-8206-Kirki-Exploit-Analysis

A deep-dive technical reconstruction and impact analysis of CVE-2026-8206—a critical CVSS 9.8 unauthenticated account takeover vulnerability in the WordPress K…

★ 3 · 2026-10-06
Dungsocool/CVE-2026-8206

CVE-2026-8206: Kirki Customizer Framework - Unauthenticated Account Takeover (CVSS 9.8)

★ 1 · 2026-07-28
izxci/CVE-2026-8206

CVE-2026-8206 Kirki Plugin Unauthenticated Account Takeover Exploit

★ 0 · 2026-06-17
CVE-2017-5638
FRESH PoCHOTMULTI PoC
PoCs 85 ★ 442 Last push 2026-10-06 (4 days, 7 hours ago)

Fetching description from NVD…

Show 8 of 85 repositories
mazen160/struts-pwn

An exploit for Apache Struts CVE-2017-5638

★ 442 · 2018-05-21
Flyteas/Struts2-045-Exp

Struts2 S2-045(CVE-2017-5638)Exp with GUI

★ 61 · 2017-03-13
immunio/apache-struts2-CVE-2017-5638

Demo Application and Exploit

★ 34 · 2017-03-13
jas502n/S2-045-EXP-POC-TOOLS

S2-045 漏洞 POC-TOOLS CVE-2017-5638

★ 25 · 2021-08-18
PolarisLab/S2-045

Struts2 S2-045(CVE-2017-5638)Vulnerability environment - http://www.mottoin.com/97954.html

★ 23 · 2017-03-07
xsscx/cve-2017-5638

Example PoC Code for CVE-2017-5638 | Apache Struts Exploit

★ 22 · 2017-03-12
jas502n/st2-046-poc

st2-046-poc CVE-2017-5638

★ 21 · 2018-08-17
ret2jazzy/Struts-Apache-ExploitPack

These are just some script which you can use to detect and exploit the Apache Struts Vulnerability (CVE-2017-5638)

★ 16 · 2017-03-12
CVE-2023-45866
FRESH PoCHOTMULTI PoC
PoCs 12 ★ 1896 Last push 2026-10-05 (4 days, 18 hours ago)

Fetching description from NVD…

Show 8 of 12 repositories
pentestfunctions/BlueDucky

🚨 CVE-2023-45866 - BlueDucky Implementation (Using DuckyScript) 🔓 Unauthenticated Peering Leading to Code Execution (Using HID Keyboard)

★ 1896 · 2026-02-11
Danyw24/blueXploit

Exploit basado en vulnerabilidades criticas Bluetooth (CVE-2023-45866, CVE-2024-21306)

★ 16 · 2026-07-23
Eason-zz/BluetoothDucky

CVE-2023-45866 - BluetoothDucky implementation (Using DuckyScript)

★ 16 · 2024-01-15
AvishekDhakal/CVE-2023-45866_EXPLOITS

Exploits Tested in Mi A2 Lite and Realme 2 pro

★ 3 · 2024-09-02
Sergeb250/BlueDucky

BlueDucky exploits a Bluetooth vulnerability, specifically CVE-2023-45866, which allows an attacker to inject keystrokes into a target device. The attacker's d…

★ 2 · 2025-08-26
xG3nesis/RustyInjector

Rust implementation of Marc Newlin's keystroke injection proof of concept (CVE-2023-45866).

★ 1 · 2025-01-25
hegaz0y/-BuL

EDSEC_BKIF is a keystroke injection tool for Android, Linux, and iOS. With the help of CVE-2023-45866, it grants users unprecedented control over targeted syst…

★ 1 · 2026-05-31
jjjjjjjj987/cve-2023-45866-py
★ 0 · 2024-01-23
CVE-2026-86950
HIGHFRESH PoCMULTI PoC
CVSS 8.8 HIGH CWE-787 Published 2026-09-28 PoCs 5 ★ 9 Last push 2026-10-05 (4 days, 22 hours ago)

An out-of-bounds write issue was addressed with improved bounds checking. This issue is fixed in iOS 26.7.1 and iPadOS 26.7.1, macOS Sequoia 15.8.1, macOS Tahoe 26.7.1. Processing a maliciously crafted file may lead to arbitrary code execution. Apple is aware of a report that this issue may have been exploited in an extremely sophisticated attack against specific targeted individuals on versions of iOS before iOS 27.

Show 5 repositories
msuiche/hotcell

Runtime exploit monitor for Apple document/image pipelines (iOS/macOS) — EXPMON concept: Frida agent + behavioral rules. First target: the CVE-2026-86950 glyph…

★ 9 · 2026-10-02
decalage2/detect_CVE-2026-86950

A python tool to detect PDF files exploiting CVE-2026-86950

★ 4 · 2026-10-02
DeAurity/CVE-2026-86950-POC

Out-of-bounds Write (CWE-787)

★ 2 · 2026-09-29
34zY/CVE-2026-86950
★ 0 · 2026-10-01
0xBlackash/CVE-2026-86950

CVE-2026-86950

★ 0 · 2026-10-05
CVE-2026-46333
FRESH PoCMULTI PoC
PoCs 5 ★ 41 Last push 2026-10-05 (4 days, 23 hours ago)

Fetching description from NVD…

Show 5 repositories
0xBlackash/CVE-2026-46333

CVE-2026-46333

★ 41 · 2026-05-17
KaraZajac/CHARON

CHARON — pre-built PoC for CVE-2026-46333 (Linux ptrace mm==NULL fd theft)

★ 8 · 2026-05-17
studiogangster/CVE-2026-46333

Research on `pidfd_getfd(2)`-based file descriptor leakage from privileged SUID processes. Demonstrates race-condition FD capture against OpenSSH `ssh-keysign`…

★ 6 · 2026-05-17
st4rburn/public-passwd

Use CVE-2026-46333 and CVE-2026-31431 to change any user's password.

★ 4 · 2026-05-17
dr4mohamed/CVE-2026-46333
★ 0 · 2026-10-05
CVE-2026-73570
FRESH PoCMULTI PoC
PoCs 9 ★ 4 Last push 2026-10-05 (5 days, 1 hour ago)

Fetching description from NVD…

Show 8 of 9 repositories
HORKimhab/CVE-2026-73570

CVE-2026-73570

★ 4 · 2026-08-25
gabrielunknown/CVE-2026-73570

Zimbra SNMP Notification OS Command Injection — Unauthenticated RCE via SMTP exploit (Poc)

★ 4 · 2026-09-14
jishino567/CVE-2026-73570

PoC for CVE-2026-73570 (Zimbra SMTP Command Injection)

★ 2 · 2026-08-25
dahnutz/zimbra-cve-2026-73570-ir

Detection-first, evidence-preserving incident-response toolkit for Zimbra CVE-2026-73570. Includes read-only host checks, IOC feeds, triage, persistence, conta…

★ 2 · 2026-10-05
0xBlackash/CVE-2026-73570

CVE-2026-73570

★ 2 · 2026-09-30
BiuTrap/CVE-2026-73570

CVE-2026-73570 PoC

★ 0 · 2026-09-02
INFOKOM-KI/Zimbra-CVE-2026-73570-Rules

Wazuh Rules for Detection Zimbra (CVE-2026-73570).

★ 0 · 2026-08-28
juanpoch/CVE-2026-73570

Zimbra Collaboration Suite RCE — SMTP log poisoning → swatchdog → OS Command Injection (CVSS 8.9, CISA KEV)

★ 0 · 2026-09-13
CVE-2024-31317
FRESH PoCMULTI PoC
PoCs 14 ★ 92 Last push 2026-10-05 (5 days, 2 hours ago)

Fetching description from NVD…

Show 8 of 14 repositories
wqry085/PoC-Deployer-System

Quick tool for utilizing CVE-2024-31317 on Android

★ 92 · 2026-02-16
fuhei/CVE-2024-31317

CVE-2024-31317

★ 68 · 2024-12-05
Anonymous941/zygote-injection-toolkit

A command-line utility to exploit Android Zygote injection (CVE-2024-31317)

★ 63 · 2025-12-17
agg23/cve-2024-31317

Detailed discussion of Zygote vulnerability CVE-2024-31317

★ 30 · 2025-08-05
CleoV2/Debuggable-App-Exploit

CVE-2024-31317 Debuggable App Exploit

★ 12 · 2026-03-01
fcy10012/CVE-2024-31317-Deployer

CVE-2024-31317 Android Zygote命令注入漏洞研究与部署工具 | Android 9-13 漏洞利用框架

★ 6 · 2025-12-21
rifting/Zygotroller

Remove Android profile owners/family link with CVE-2024-31317

★ 5 · 2025-08-10
CVE-2026-45321
FRESH PoCMULTI PoC
PoCs 12 ★ 2 Last push 2026-10-05 (5 days, 2 hours ago)

Fetching description from NVD…

Show 8 of 12 repositories
Intrudify/mini-shai-hulud-scanner

Scanner for the Mini Shai-Hulud npm/PyPI supply chain worm (NHS CC-4781 · CVE-2026-45321). Detects gh-token-monitor persistence, payload artefacts, and attacke…

★ 2 · 2026-05-13
fabriziosalmi/tanstack-compromise-checker

Shell script to detect TanStack npm supply chain attack indicators (CVE-2026-45321 / GHSA-g7cv-rxg3-hmpx)

★ 2 · 2026-10-05
qi-scape/scan-shai-hulud

Detect CVE-2026-45321 Mini Shai-Hulud supply chain compromise — scans for 170 npm + 2 PyPI poisoned packages across TanStack, Mistral AI, UiPath, OpenSearch, G…

★ 1 · 2026-05-12
shayr1/shai-hulud-scan

Claude Code skill to scan machines for Mini Shai-Hulud (CVE-2026-45321) supply chain worm IOCs

★ 1 · 2026-05-13
nkopylov/tanscript-exploit-check

IOC checker for the TanStack/Mini Shai-Hulud npm supply chain attack (CVE-2026-45321)

★ 1 · 2026-05-26
ry-allan/tanstack-compromise-checker

Detects CVE-2026-45321 (TanStack supply chain compromise) and Mini Shai-Hulud worm artifacts. Scans node_modules, lockfiles, persistence hooks (Claude Code, VS…

★ 0 · 2026-05-24
Yomisana/are-you-get-tanstack-attack

Are you get Tanstack Supply chain attack attack of 5/11? CVE-2026-45321 / GHSA-g7cv-rxg3-hmpx

★ 0 · 2026-05-13
Caixa-git/tanstack-shield

🛡️ One-command scanner for CVE-2026-45321 — TanStack npm supply-chain attack

★ 0 · 2026-05-12
CVE-2024-46987
FRESH PoCMULTI PoC
PoCs 10 ★ 27 Last push 2026-10-04 (5 days, 16 hours ago)

Fetching description from NVD…

Show 8 of 10 repositories
Goultarde/CVE-2024-46987

This Python PoC exploits CVE-2024-46987, a Path Traversal bug in Camaleon CMS 2.8.0 < 2.8.2 (work on 2.9.0). It allows authenticated users to read sensitive s…

★ 27 · 2026-05-10
advaitpathak21/CVE-2024-46987

Exploit created using Python

★ 1 · 2026-02-06
L1337Xi/CVE-2024-46987

Path Traversal vulnerability

★ 0 · 2026-02-03
Ik0nw/CVE-2024-46987
★ 0 · 2026-02-04
sparrowhawk1113/Exploit-for-CVE-2024-46987

Exploit for CVE-2024-46987

★ 0 · 2026-02-05
Rival420/CVE-2024-46987

CVE-2024-46987 - Camaleon CMS LFI Exploit

★ 0 · 2026-02-05
ramzerk/CVE-2024-46987

This Rust PoC exploits CVE-2024-46987, a Path Traversal bug in Camaleon CMS 2.8.0 < 2.8.2 (work on 2.9.0).

★ 0 · 2026-02-09
BLUEBERRYP1LL/CVE-2024-46987

PoC exploit for CVE-2024-46987 — Camaleon CMS arbitrary path traversal (file read)

★ 0 · 2026-02-22
CVE-2018-6242
FRESH PoCHOTMULTI PoC
PoCs 7 ★ 559 Last push 2026-10-04 (5 days, 16 hours ago)

Fetching description from NVD…

Show 7 repositories
DavidBuchanan314/NXLoader

My first Android app: Launch Fusée Gelée payloads from stock Android (CVE-2018-6242)

★ 559 · 2022-12-11
reswitched/rcm-modchips

Collection of "modchip" designs for launching payloads via the Tegra RCM bug (CVE-2018-6242)

★ 21 · 2018-05-22
austinhartzheim/fusee-gelee

Rust implementation of the Fusée Gelée exploit (CVE-2018-6242) for Tegra processors.

★ 5 · 2022-12-21
nikameru/nxboot

Payload injection tool for Nintendo Switch consoles vulnerable to CVE-2018-6242 ("Fusée Gelée")

★ 2 · 2026-10-04
Resi-le/NXLoader

An app that enables payload injection into a Switch console from an Android device by exploiting the CVE-2018-6242 vulnerability

★ 1 · 2025-12-21
Swiftloke/fusee-toy

Implementation of CVE-2018-6242 (AKA Fusée Gelée, AKA shofel2)

★ 0 · 2022-05-25
oliviaholly/fusee-gelee

An implementation of the Fusee Gelee exploit (CVE-2018-6242) for the Nintendo Switch, along with a custom payload.

★ 0 · 2026-03-30
CVE-2026-72898
FRESH PoCMULTI PoC
PoCs 10 ★ 22 Last push 2026-10-04 (5 days, 17 hours ago)

Fetching description from NVD…

Show 8 of 10 repositories
EQSTLab/CVE-2026-72898

Metabase SQLi

★ 22 · 2026-08-27
0xBlackash/CVE-2026-72898

CVE-2026-72898

★ 8 · 2026-08-13
4minx/CVE-2026-72898

CVE-2026-72898 PoC : Metabase Unauthenticated SQL Injection

★ 8 · 2026-08-15
VuxNx/CVE-2026-72898

PoC for CVE-2026-72898

★ 2 · 2026-08-15
ubitquity/Metabase-Setup-Endpoint-SQLi-Fix

CVE-2026-72898-Metabase-SQLi-Fix

★ 1 · 2026-08-15
codeb0ssx/CVE-2026-72898-PoC

CVE-2026-72898 - Metabase

★ 0 · 2026-08-13
Franc-Zar/CVE-2026-72898-safe-detection

Simple script to achieve safe and non-desruptive active detection of CVE-2026-72898 (SQLi in Metabase)

★ 0 · 2026-08-20
d-maggipinto/CVE-2026-72898-metabase-sqli

Detector + root-cause analysis for CVE-2026-72898 (Metabase unauthenticated SQLi via reset_password)

★ 0 · 2026-08-26
CVE-2025-49144
FRESH PoCMULTI PoC
PoCs 8 ★ 89 Last push 2026-10-04 (6 days, 1 hour ago)

Fetching description from NVD…

Show 8 repositories
TheTorjanCaptain/CVE-2025-49144_PoC

CVE-2025-49144 PoC for security researchers to test and try.

★ 89 · 2025-06-30
Vr00mm/CVE-2025-49144

PoC CVE-2025-49144

★ 6 · 2025-06-27
b0ySie7e/Notepad-8.8.1_CVE-2025-49144

Proof of Concept (PoC) that exploits the CVE-2025-49144 vulnerability in the Notepad++ 8.8.1 installer.

★ 6 · 2025-06-29
assad12341/notepad-v8.8.1-LPE-CVE-

CVE-2025-49144 * Notepad++ v8.8.1 * SYSTEM-level POC

★ 0 · 2025-06-26
timsonner/CVE-2025-49144-Research
★ 0 · 2025-07-02
GiZcesi/HJregsvr32

Educational PoC for CVE-2025-49144 (regsvr32 LOLBIN) — authorized lab use only

★ 0 · 2026-10-04
onniio/CVE-2025-49144
★ 0 · 2025-09-17
havertz2110/CVE-2025-49144-PoC

This is my reproduce PoC for CVE-2025-49144

★ 0 · 2026-03-20
CVE-2026-25253
FRESH PoCMULTI PoC
PoCs 10 ★ 93 Last push 2026-10-04 (6 days, 6 hours ago)

Fetching description from NVD…

Show 8 of 10 repositories
ethiack/moltbot-1click-rce

Clawdbot/Moltbot/OpenClaw One-click RCE PoC 🦞 (CVE-2026-25253)

★ 93 · 2026-01-27
adibirzu/openclaw-security-monitor

Proactive security monitoring for OpenClaw deployments. Detects ClawHavoc, AMOS stealer, CVE-2026-25253, memory poisoning, and supply chain attacks.

★ 48 · 2026-10-04
al4n4n/CVE-2026-25253-research
★ 7 · 2026-02-08
FrigateCaptain/openclaw_vulnerabilities_and_solutions

> OpenClaw security audit and hardened deployment guide — known vulnerabilities (CVE-2026-25253, malicious skills, credential leakage), architectural mitigatio…

★ 2 · 2026-09-03
EQSTLab/CVE-2026-25253

OpenClaw Authentication Token Exfiltration

★ 2 · 2026-05-20
KajzingerAkos/CVE-2026-25253

CVE-2026-25253: One-Click RCE in OpenClaw via Auth Token Theft

★ 1 · 2026-04-18
siyad01/agentbox

Open-source sandboxed runtime for AI agents — gVisor/Docker isolation, credential vault, immutable audit log. Built after CVE-2026-25253.

★ 1 · 2026-05-11
yym8538/CVE-2026-25253
★ 1 · 2026-08-21
CVE-2025-60787
FRESH PoCMULTI PoC
PoCs 9 ★ 10 Last push 2026-10-03 (6 days, 12 hours ago)

Fetching description from NVD…

Show 8 of 9 repositories
gunzf0x/CVE-2025-60787

PoC for CVE-2025-60787 - Authenticated RCE in motionEye for all versions up to 0.43.1b4 (included)

★ 10 · 2026-03-08
lil0xplorer/CVE-2025-60787_PoC
★ 2 · 2026-03-08
Rohitberiwala/CVE-2025-60787-MotionEye-RCE

Professional PoC for CVE-2025-60787: Remote Code Execution in MotionEye (<= 0.43.1b4). This exploit demonstrates an OS Command Injection vulnerability through …

★ 1 · 2026-03-12
prabhatverma47/CVE-2025-60787

CVE-2025-60787 Poc - RCE - MotionEye <= 0.43.1b4

★ 0 · 2025-10-03
d3vn0mi/CVE-2025-60787-POC

Python PoC for CVE-2025-60787, authenticated OS command injection RCE in motionEye <= 0.43.1b4 via unsanitized image_file_name config

★ 0 · 2026-03-13
agent-skywalker/CVE-2025-60787

MotionEye v0.43.1b4 OS Command Injection

★ 0 · 2026-03-14
ozcanpng/CVE-2025-60787

CVE-2025-60787 motionEye authenticated command injection RCE PoC

★ 0 · 2026-07-10
CVE-2026-27944
FRESH PoCMULTI PoC
PoCs 7 ★ 9 Last push 2026-10-03 (6 days, 13 hours ago)

Fetching description from NVD…

Show 7 repositories
Skynoxk/CVE-2026-27944

Automated exploit script for CVE-2026-27944 (Nginx UI). Downloads/decrypts backups, extracts system secrets, and creates rogue admin accounts for full dashboar…

★ 9 · 2026-03-14
NULL200OK/CVE-2026-27944

CVE-2026-27944 - Nginx UI Unauthenticated Backup Download & Decryption

★ 4 · 2026-03-10
NULL200OK/-nginxui_discover

Nginx UI Discovery Scanner - CVE-2026-27944 Version Detector

★ 2 · 2026-03-11
jake-young-dev/CVE-2026-27944

An educational deep-dive into CVE-2026-27944

★ 1 · 2026-05-06
karimelsheikh1/HTB-Snapped-Writeup

HTB Snapped — Hard Linux machine writeup. CVE-2026-27944 (Nginx UI unauthenticated backup disclosure) chained with CVE-2026-3888 (snapd race condition LPE) to …

★ 1 · 2026-05-07
BimaBalance/Cve-2026-27944-Tools-Exploit

Suka suka lah

★ 1 · 2026-07-05
diamorphine666/CVE-2026-27944

Nginx UI - Backups Decryption (CVE-2026-27944)

★ 0 · 2026-10-03
CVE-2024-51482
FRESH PoCMULTI PoC
PoCs 9 ★ 14 Last push 2026-10-03 (6 days, 13 hours ago)

Fetching description from NVD…

Show 8 of 9 repositories
plur1bu5/CVE-2024-51482-PoC

Authenticated time-based blind SQL injection PoC for ZoneMinder CVE-2024-51482 (v1.37.* <= 1.37.64)

★ 14 · 2026-03-09
BridgerAlderson/CVE-2024-51482

ZenoMinder Blind SQL Injection PoC

★ 9 · 2026-03-08
0xDaeras/CVE-2024-51482-POC

Time-based SQL injection PoC for CVE-2024-51482 in ZoneMinder, with reproducible Docker lab and automated data extraction.

★ 7 · 2026-05-09
BwithE/CVE-2024-51482

CVE-2024-51482 ZoneMinder v1.37.* <= 1.37.64 poc

★ 1 · 2025-10-05
Ravi-lk/CVE-2024-51482-ZoneMinder-v1.37.-1.37.64-SQL-Injection-POC

ZoneMinder Time-Based SQL Injection (CVE-2024-51482) Exploit POC

★ 0 · 2026-03-08
lnn0v4/sqli-hunter-CVE-2024-51482-PoC

Scripts en Python para la explotación de CVE-2024-51482 (SQLi en ZoneMinder) — HTB CCTV

★ 0 · 2026-03-11
Erhui-Li/CVE-2024-51482-ZoneMinder-CCTV-HTB-Reliable-EXP

Performing multiple time-based blind injections for the same character and selecting the most frequent result significantly reduces errors and improves reliabi…

★ 0 · 2026-03-19
c0gnit00/CVE-2024-51482

CVE-2025-51482 POC, Dump Credentials From zm.Users

★ 0 · 2026-07-10
CVE-2026-0828
FRESH PoCMULTI PoC
PoCs 7 ★ 58 Last push 2026-10-03 (6 days, 16 hours ago)

Fetching description from NVD…

Show 7 repositories
DeathShotXD/0xKern3lCrush

Advanced PoC & Research for CVE-2026-0828 (Safetica) and CVE-2025-7771 (ThrottleStop). Analysis of BYOVD (Bring Your Own Vulnerable Driver) TTPs for Ring 0 pro…

★ 58 · 2026-10-03
ANYLNK/STProcessMonitorBYOVD

The PoC for CVE-2025-70795 / CVE-2026-0828 and updated driver

★ 48 · 2026-03-13
oxfemale/KillChain

Kernel Process Termination Tool ( CVE-2026-0828 exploit)

★ 36 · 2026-04-02
KOSEC-LLC/BYOVD-Research

BYOVD research performed by KOSEC. Includes vulnerable drivers and writeups (CVE-2026-0828).

★ 12 · 2026-05-28
mein-0/cve-2026-0828
★ 1 · 2026-05-27
Hika-sec/Terminator_Killer

Ring0-level process killer leveraging CVE-2026-0828 (BYOVD). Designed to demonstrate kernel-level process termination via a vulnerable signed driver, highlight…

★ 1 · 2026-08-23
ximerag/dast

CVE-2026-0828

★ 1 · 2026-09-02
CVE-2025-7771
FRESH PoCMULTI PoC
PoCs 12 ★ 58 Last push 2026-10-03 (6 days, 16 hours ago)

Fetching description from NVD…

Show 8 of 12 repositories
DeathShotXD/0xKern3lCrush

Advanced PoC & Research for CVE-2026-0828 (Safetica) and CVE-2025-7771 (ThrottleStop). Analysis of BYOVD (Bring Your Own Vulnerable Driver) TTPs for Ring 0 pro…

★ 58 · 2026-10-03
enessakircolak/CVE-2025-7771

ThrottleStop.sys Arbitrary Physical Memory R/W

★ 22 · 2026-08-10
wqsv/ThrottleStopPoC

CVE-2025-7771: Arbitrary physical memory and I/O port read/write via ThrottleStop driver

★ 18 · 2025-09-05
AmrHuss/throttlestop-exploit-rw

Arbitrary physical memory read/write exploitation using ThrottleStop.sys (CVE-2025-7771) with superfetch address translation - Windows kernel security research

★ 15 · 2025-11-13
D4rkks/CVE-2025-7771-Vulnerability-Exploration

Escalating privilege in the system from unsigned driver using throttlestop vulnerability

★ 15 · 2026-04-17
Gabriel-Lacorte/CVE-2025-7771

Arbitrary Function Call Exploit using the ThrottleStop driver

★ 12 · 2026-02-25
Demoo1337/ThrottleStop

CVE-2025-7771 ThrottleStop.sys privilege escalation exploit - unrestricted IOCTL access to physical memory via MmMapIoSpace

★ 11 · 2025-09-07
xM0kht4r/CVE-2025-7771

A simple PoC demonstrating the vulnerability in the ThrottleStop.sys driver, showcasing arbitrary physical memory read and write capabilities, as well as virtu…

★ 10 · 2026-01-15
CVE-2026-39808
FRESH PoCMULTI PoC
PoCs 6 ★ 26 Last push 2026-10-03 (6 days, 19 hours ago)

Fetching description from NVD…

Show 6 repositories
ynsmroztas/FortiSandbox-RCE-Exploit-CVE-2026-39808

FortiSandbox RCE Scanner — CVE-2026-39808

★ 26 · 2026-04-21
samu-delucas/CVE-2026-39808

PoC for Unauthenticated RCE in FortiSandbox via CVE-2026-39808

★ 9 · 2026-04-15
0xBlackash/CVE-2026-39808

CVE-2026-39808

★ 2 · 2026-04-23
gotr00t0day/CVE-2026-39808

An unauthenticated OS command injection vulnerability

★ 1 · 2026-10-03
HORKimhab/CVE-2026-39808

CVE-2026-39808 - Fortinet Sandbox - Draft

★ 0 · 2026-06-17
error-inside/CVE-2026-39808

Fortinet FortiSandbox 4.4.0-4.4.8 - OS Command Injection via tracer-behavior Endpoint

★ 0 · 2026-06-18
CVE-2026-4480
FRESH PoCMULTI PoC
PoCs 8 ★ 23 Last push 2026-10-03 (6 days, 20 hours ago)

Fetching description from NVD…

Show 8 repositories
TheCyberGeek/CVE-2026-4480-PoC
★ 23 · 2026-06-05
0xBlackash/CVE-2026-4480

CVE-2026-4480

★ 2 · 2026-06-09
saitoken241/CVE-2026-4480-POC

smb spooler to RCE

★ 2 · 2026-10-03
AlanNewberry/CVE-2026-4480-samba-print-command-injection-rce

Exploit para CVE-2026-4480: inyeccion de comandos en la variable %J del print command de Samba para RCE sin autenticacion via spoolss.

★ 2 · 2026-10-03
robinxiang/CVE-2026-4480

Exploit CVE-2026-4480

★ 1 · 2026-06-07
Vusal777/CVE-2026-4480-exploit-poc

This is an exploit poc for CVE-2026-4480

★ 0 · 2026-06-16
ClearLotus-git/CVE-2026-4480-PoC
★ 0 · 2026-06-20
timgad794/Abducted-HTB-Writeup

🔴 HackTheBox Abducted (Medium) — CVE-2026-4480 (Samba %J) → rclone reveal → SMB-Symlink → systemd Drop-in → Root

★ 0 · 2026-10-02
CVE-2026-41096
MULTI PoC
PoCs 7 ★ 96 Last push 2026-10-03 (1 week ago)

Fetching description from NVD…

Show 7 repositories
ZeroDayEvil/CVE-2026-41096-PoC

🛡️ Official AI Security Tool module for CVE-2026-41096 (Windows DNSAPI.dll Heap Overflow / DNS-Mayhem Deep Dive Analysis & Audit Module).

★ 96 · 2026-10-03
satchfunky/CVE-2026-41096-POC

windows api bug

★ 38 · 2026-05-24
TwoSevenOneT/CVE-2026-41096-Attack-Surface

Attack surface in the real-world environment of CVE-2026-41096

★ 14 · 2026-06-04
mrk336/DNS-Mayhem-CVE-2026-41096-Deep-Dive

In‑depth technical analysis of CVE‑2026‑41096, a critical heap overflow in Windows DNSAPI.dll enabling remote code execution via crafted DNS responses. Include…

★ 4 · 2026-05-15
m0n1x90/CVE-2026-41096

CVE-2026-41096: Heap Overflow in the Windows DNS Client

★ 3 · 2026-05-24
personnumber3377/dns_client_fuzzing

Fuzzing the Microsoft Windows DNS client library. Inspired by CVE-2026-41096.

★ 0 · 2026-06-23
CVE-2021-21315
HOTMULTI PoC
PoCs 6 ★ 160 Last push 2026-10-03 (1 week ago)

Fetching description from NVD…

Show 6 repositories
ForbiddenProgrammer/CVE-2021-21315-PoC

CVE 2021-21315 PoC

★ 160 · 2021-06-09
alikarimi999/CVE-2021-21315
★ 4 · 2021-09-20
G01d3nW01f/CVE-2021-21315

rust noob tried write easy exploit code with rust lang

★ 1 · 2021-12-27
MazX0p/CVE-2021-21315-exploit

systeminformation

★ 0 · 2021-07-18
xMohamed0/CVE-2021-21315-POC
★ 0 · 2021-11-14
jimahub/scenario-d-kev

Thesis scenario test (research only): Scenario D: KEV override path - [email protected] CVE-2021-21315

★ 0 · 2026-10-03
CVE-2017-5941
MULTI PoC
PoCs 7 ★ 2 Last push 2026-10-03 (1 week ago)

Fetching description from NVD…

Show 7 repositories
uartu0/nodejshell

Exploit de reverseshell para desserialização em NodeJs (CVE-2017-5941)

★ 2 · 2023-08-27
Cr4zyD14m0nd137/Lab-for-cve-2018-15133

Ejecución de exploit de deserialización con CVE-2017-5941

★ 0 · 2023-05-13
f41k0n/RCE-NodeJs

Exploit Title: Node.JS - 'node-serialize' Remote Code Execution (2), Version: 0.0.4, CVE: CVE-2017-5941

★ 0 · 2025-10-12
jimahub/scenario-c-block

Thesis scenario test (research only): Scenario C: EPSS-BLOCK path - [email protected] CVE-2017-5941

★ 0 · 2026-10-03
CVE-2024-55591
MULTI PoC
PoCs 10 ★ 75 Last push 2026-10-02 (1 week ago)

Fetching description from NVD…

Show 8 of 10 repositories
exfil0/CVE-2024-55591-POC

A comprehensive all-in-one Python-based Proof of Concept script to discover and exploit a critical authentication bypass vulnerability (CVE-2024-55591) in cert…

★ 12 · 2025-05-26
virus-or-not/CVE-2024-55591

An Authentication Bypass Using an Alternate Path or Channel vulnerability [CWE-288] affecting FortiOS and FortiProxy may allow a remote attacker to gain super-…

★ 8 · 2025-01-29
UMChacker/CVE-2024-55591-POC
★ 2 · 2025-05-26
uLl0a/cve-2024-55591-poc

Educational implementation in Go for CVE-2024-55591 (Fortinet FortiOS Authentication Bypass). Designed for security research, vulnerability assessment, and und…

★ 1 · 2026-09-18
< Prev Page 6 / 33 Next >

Sources: public PoC repositories on GitHub (nomi-sec/PoC-in-GitHub), descriptions and scores from NVD / CVE.org. Exploit code is third-party; review before running.